Cryptanalysis and improvement of a multi-server authentication protocol by Lu et al.

4Citations
Citations of this article
9Readers
Mendeley users who have this article in their library.

Abstract

The increasing number of subscribers and demand of multiplicity of services has turned Multi-Server Authentication (MSA) into an integral part of remote authentication paradigm. MSA not only offers an efficient mode to register the users by engaging a trusted third party (Registration Centre), but also a cost-effective architecture for service procurement, onwards. Recently, Lu et al.’s scheme demonstrated that Mishra et al.’s scheme is unguarded to perfect forward secrecy compromise, server masquerading, and forgery attacks, and presented a better scheme. However, we discovered that Lu et al.’s scheme is still susceptible to malicious insider attack and non-compliant to perfect forward secrecy. This study presents a critical review on Lu et al.’s scheme and then proposes a secure multi-server authentication scheme. The security properties of contributed work are validated with automated Proverif tool and proved under formal security analysis.

Cite

CITATION STYLE

APA

Irshad, A., Sher, M., Alzahrani, B. A., Albeshri, A., Chaudhry, S. A., & Kumari, S. (2018). Cryptanalysis and improvement of a multi-server authentication protocol by Lu et al. KSII Transactions on Internet and Information Systems, 12(1), 523–549. https://doi.org/10.3837/tiis.2018.01.025

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free